İçeriğe atla
Noroxi

QNAP kayıtları

qnap üreticisine ait 636 yayımlanmış kayıt.

Tüm kayıtlar

636 kayıt
  • GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attac

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    gnu · bash24 Eyl 2014

  • GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variabl

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    gnu · bash24 Eyl 2014

  • This external control of file name or path vulnerability allows remote attackers to access or modify system files.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %90

    qnap · photo station5 Ara 2019

  • This improper access control vulnerability allows remote attackers to gain unauthorized access to the system.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %88

    qnap · photo station5 Ara 2019

  • This external control of file name or path vulnerability allows remote attackers to access or modify system files.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %83

    qnap · photo station5 Ara 2019

  • An externally controlled reference to a resource vulnerability has been reported to affect QNAP NAS running Photo Station.

    KritikCVSS 9,1KEVSilahlaştırılmışEPSS %88

    qnap · photo station8 Eyl 2022

  • Improper Authorization Vulnerability in HBS 3 (Hybrid Backup Sync)

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %78

    qnap · hybrid backup sync12 May 2021

  • An OS command injection vulnerability has been found to affect legacy QNAP VioStor NVR models running QVR Firmware 4.x.

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %73

    qnap · qvr firmware8 Ara 2023

  • CVE-2020-2509
    79Bu hafta

    Command Injection Vulnerability in QTS and QuTS hero

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %34

    qnap · qts17 Nis 2021

  • CVE-2018-19949
    78Bu hafta

    If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %28

    qnap · qts28 Eki 2020

  • CVE-2019-7193
    73Bu hafta

    This improper input validation vulnerability allows remote attackers to inject arbitrary code to the system.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %14

    qnap · qts5 Ara 2019

  • CVE-2020-2506
    70Bu hafta

    improper access control vulnerability in Helpdesk

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %2

    qnap · helpdesk3 Şub 2021

  • CVE-2018-19953
    63Bu hafta

    If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code.

    OrtaCVSS 6,1KEVSilahlaştırılmışEPSS %29

    qnap · qts28 Eki 2020

  • CVE-2023-47218
    60Bu hafta

    QTS, QuTS hero, QuTScloud

    YüksekCVSS 8,3SilahlaştırılmışEPSS %90

    qnap · qts12 Şub 2024

  • CVE-2017-6360
    59Planlayın

    QNAP QTS before 4.2.4 Build 20170313 allows attackers to gain administrator privileges and obtain sensitive information via unspecified vect

    KritikCVSS 9,8Kavram kanıtıEPSS %66

    qnap · qts23 Mar 2017

  • CVE-2018-19943
    57Planlayın

    If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code.

    OrtaCVSS 5,4KEVSilahlaştırılmışEPSS %21

    qnap · qts28 Eki 2020

  • CVE-2017-6361
    56Planlayın

    QNAP QTS before 4.2.4 Build 20170313 allows attackers to execute arbitrary commands via unspecified vectors.

    KritikCVSS 9,8Kavram kanıtıEPSS %57

    qnap · qts23 Mar 2017

  • CVE-2018-0706
    49Planlayın

    Exposure of Private Information in QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to access se

    YüksekCVSS 8,8SilahlaştırılmışEPSS %48

    qnap · q\'center16 Tem 2018

  • CVE-2017-6359
    47Planlayın

    QNAP QTS before 4.2.4 Build 20170313 allows attackers to gain administrator privileges and execute arbitrary commands via unspecified vector

    KritikCVSS 9,8Kavram kanıtıEPSS %27

    qnap · qts23 Mar 2017

  • CVE-2018-0707
    46Planlayın

    Command injection vulnerability in change password of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated

    YüksekCVSS 7,2SilahlaştırılmışEPSS %59

    qnap · q\'center16 Tem 2018

  • CVE-2024-27130
    46Planlayın

    A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions.

    YüksekCVSS 8,8Kavram kanıtıEPSS %38

    qnap · qts21 May 2024

  • CVE-2024-21899
    46Planlayın

    QTS, QuTS hero, QuTScloud

    KritikCVSS 9,8İstismar yokEPSS %24

    qnap · qts8 Mar 2024

  • CVE-2023-23368
    45Planlayın

    QTS, QuTS hero, QuTScloud

    KritikCVSS 9,8İstismar yokEPSS %19

    qnap · qts3 Kas 2023

  • CVE-2017-13067
    44Planlayın

    QNAP has patched a remote code execution vulnerability affecting the QTS Media Library in all versions prior to QTS 4.2.6 build 20170905 and

    KritikCVSS 9,8SilahlaştırılmışEPSS %17

    qnap · qts14 Eyl 2017

  • CVE-2021-28809
    44Planlayın

    Missing Authentication for Critical Function in RTRR Server in HBS3

    KritikCVSS 9,8İstismar yokEPSS %16

    qnap · hybrid backup sync8 Tem 2021